As a Security Engineer, you will design, implement, and manage advanced security monitoring and automated response capabilities, partnering closely with SOC teams and IT stakeholders to strengthen detection coverage and accelerate incident response through automation.
Salary Package: Competitive compensation package aligned with your expertise!
Work Setup: Hybrid or Onsite (depending on the project) | Cubao, Quezon City
Responsibilities
- SIEM Engineering & Management: Design, implement, and optimize SIEM solutions (e.g., Splunk, Microsoft Sentinel, Google SecOps) while developing correlation rules, dashboards, and streamlining data ingestion and normalization.
- SOAR & Automation: Implement and manage SOAR platforms (e.g., Cortex XSOAR, Splunk SOAR), developing automated playbooks for incident response, alert triage, and threat intelligence enrichment.
- Security Operations Support: Support incident response, conduct root cause analysis, align security controls with frameworks like MITRE ATT&CK and NIST, and provide technical training and documentation for SOC and IT teams.
Qualifications
- Bachelor’s degree in Cybersecurity, IT, Computer Science, or a related field.
- 3 to 8 years of solid cybersecurity experience, featuring hands-on SIEM/SOAR engineering exposure (SOC environment experience is highly preferred).
- Proven experience with at least one SIEM platform (Splunk, Sentinel, QRadar, ArcSight, Google SecOps) and hands-on SOAR playbook development.
- Strong scripting skills in Python, PowerShell, or Bash for automation and integrations, along with familiarity with EDR/XDR, firewalls, and cloud security (AWS, Azure, GCP).